CVE-2025-21390

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 11, 2025
Updated: Feb 19, 2025
CWE ID 122

Summary

CVE-2025-21390 is a critical Remote Code Execution vulnerability affecting Microsoft Excel. Malicious Excel files can exploit this issue, allowing attackers to execute arbitrary code on victims' systems. Successful exploitation can lead to complete system compromise and unauthorized access to sensitive information. Microsoft has released a patch to address this vulnerability, and users are strongly encouraged to install it promptly to protect against potential attacks. Failure to apply the patch leaves systems vulnerable to remote code execution, potentially resulting in significant data loss or theft.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share